Principal Identity Engineer

Ecolab

Not Interested
Bookmark
Report This Job

profile Job Location:

Saint Paul, MN - USA

profile Monthly Salary: $ 153900 - 230800
Posted on: 12 hours ago
Vacancies: 1 Vacancy

Job Summary

Principal Identity Engineer:

Ecolab is seeking a highly skilled Principal Identity Engineer to lead our identity management strategy in a complex hybrid environment. This role will oversee and own the architecture implementation and training other members around operational management of critical systems including BeyondTrust Microsoft Entra ID (formerly Azure AD) Active Directory (AD) internal Certificate Authority (Active Directory Certificate Services - ADCS) and external Certificate Authorities such as Sectigo.

Whats in it For You:

As a lead team member youll influence our strategy and direction drive project success and help shape the future for digital growth

  • Assist with identity technical solution design across Identity Access Management Platforms.
  • Lead the design and implementation of enterprise-grade Identity Management solutions including BeyondTrust Active Directory (AD) Entra ID and Certificate Management.
  • Develop scalable architectures for hybrid environments that integrate on-premises and cloud-based systems.
  • Evolve and optimize a hybrid environment combining managed and exchange services across domains.
  • Ensure seamless integration of identity solutions with existing infrastructure including Entra ID and other third-party platforms.
  • Provide technical leadership and mentorship to engineers within the team.
  • Oversee and provide recommendations of identity management tools including monitoring troubleshooting and performance optimization.
  • Playing a key role in developing standards for the identity team in relation to implementation maintenance and support while additionally participating in our teams on-call rotation.
  • Optimize a hybrid environment combining managed and exchange services across domains.

What You Will Do:

Key Responsibilities:

  • Design and Implementation: Lead the design and implementation of robust identity management solutions that integrate seamlessly across on-premises and cloud environments. Ensuring a stable and secure environment that is evaluated across aligned to KPIs.
  • Identity Governance: Lead lifecycle management and governance processes ensuring compliance with regulatory standards.
  • Threat Detection: Integrate identity systems with SIEM for proactive threat detection and response.
  • Passwordless Strategy: Drive adoption of modern authentication methods such as FIDO2 and passwordless technologies.
  • Metrics: Establish KPIs for identity security posture and operational efficiency.
  • BeyondTrust Integration: Lead and own the BeyondTrust platform ensuring secure access for servers admin users and supply chain isolated networks.
  • Microsoft Entra ID & Active Directory: Design a cloud first architecture and train core members in Microsoft Entra ID for managing user identities still ensuring alignment with AD on-premises systems.
  • Certificate Management: Design and manage public key infrastructure (PKI) including both internal ADCS and external Certificate Authorities like Sectigo to ensure secure communication channels and compliance with security standards.
  • Collaborate with Security Architecture Infrastructure and Cloud delivery teams to achieve business objectives
  • Partner with Enterprise Architecture and business teams to achieve strategic outcomes for Digital Initiatives

Minimum Qualifications:

  • Bachelors degree and 10 years of relevant experience in Identity Field similar roles.
  • 8 years of experience with BeyondTrustor Active Directory (AD) and Microsoft Entra ID (formerly Azure or external Certificate Authorities such as Sectigo internal Certificate Authority (Active Directory Certificate Services - ADCS)
  • Strong understanding of Identity principles including but not limited to SCIM OIDC SAML least privilege Kerberos certificate-based auth.
  • Excellent analytical skills with the ability to use data and data analytics tools to drive decisions.
  • 3 years experience with Agile methodologies and tools such as ADO or GitHub.
  • Ability to think strategically while managing day-to-day product details.
  • Strong communication and interpersonal skills the ability to collaborate and deliver effectively with diverse teams.
  • Expert in EntraID integration and Microsoft 365 identity management solutions.
  • Knowledge of scripting or automation technologies such as PowerShell Terraform REST JSON for automating identity-related tasks.
  • Experience performing SQL EQL query analysis to build a case for a new process or to take action based on the data.
  • Excellent problem-solving skills and attention to detail.
  • Ability to adapt to changing priorities and manage multiple tasks effectively
  • Immigration sponsorship and relocation are not available for this position.

Preferred Qualifications:

  • Previous experience in building and architecting using infrastructure as code with terraform.
  • Desire to be in a fast-moving agile environment with willingness to adjust quickly
  • Certifications such as CISSP CISA or relevant Microsoft BeyondTrust certifications in Identity & Access
  • Experience architecting and designing multi-cloud identity platforms
  • Project management experience
  • Experience in CIAM(Customer Identity and Access Management)
  • Experience in Protocols & APIs: Deep understanding of federation protocols (SAML OAuth2.0 OIDC) SCIM and RESTful APIs.
  • Security Frameworks: Solid foundation in Zero Trust architecture and contemporary security standards.

Annual or Hourly Compensation Range

The base salary range for this position is $153900.00 - $230800.00. This position is eligible for annual bonus pay based on performance per plan terms. Many factors are taken into consideration when determining compensation such as experience education training geography etc. We comply with all minimum wage and overtime laws.

Benefits

Ecolab strives to provide comprehensive and market-competitive benefits to meet the needs of our associates and their families.Click here to see our benefits.

If you are viewing this posting on a site other than our Ecolab Career website view our benefits at Customer Requirements Notice

To meet customer requirements and comply with local or state regulations applicants for certain customer-facing roles may need to:

- Undergo additional background screens and/or drug/alcohol testing for customer credentialing.

- Be fully vaccinated for COVID-19 including a booster if eligible unless a religious or medical accommodation is requested by the applicant and approved by Ecolab.

Americans with Disabilities Act (ADA)

Ecolab will provide reasonable accommodation (such as a qualified sign language interpreter or other personal assistance) with our application process upon request as to comply with applicable laws. If you have a disability and require accommodation assistance in this application process please visit the Recruiting Support link in the footer of each page of our career website.

Principal Identity Engineer:Ecolab is seeking a highly skilled Principal Identity Engineer to lead our identity management strategy in a complex hybrid environment. This role will oversee and own the architecture implementation and training other members around operational management of critical sys...
View more view more

Key Skills

  • Design
  • Academics
  • AutoCAD 3D
  • Cafe
  • Fabrication
  • Java

About Company

Company Logo

Ecolab is the global leader in water, hygiene and energy technologies and services. Every day, we help make the world cleaner, safer and healthier – protecting people and vital resources.

View Profile View Profile